Database/Firmware, BMC & network fabric

Arista EOS (EVPN VXLAN MAC/IP binding): Malformed packets create incorrect MAC-to-IP bindings in an EVPN VXLAN fabric
Impact
Malformed packets create incorrect MAC-to-IP bindings in an EVPN VXLAN fabric, and packets get forwarded across VLAN boundaries as a result. An attacker who can source crafted frames from inside one tenant's overlay can poison the fabric's bindings and cause traffic to cross into the wrong VLAN. The advisory notes traffic is discarded on the receiving VLAN, which limits it to a leak-and-drop rather than a clean interception — but it is still a control-plane-driven breach of the segmentation model.
Who can reach it
A host inside an EVPN VXLAN tenant network able to emit specific malformed packets.
What to do
EOS upgrade plus reload across the VTEP layer. No live workaround. If you run EVPN multi-tenancy, also audit the MAC/IP binding table for entries that do not correspond to a real workload.
References
Related entries
- Arista EOS (802.1X on access/trunk ports): With 802.1X configured on access or trunk ports and routing enabled on theCVE-2023-5502 · Arista EOS (802.1X on access/trunk ports)Medium
- AMD SEV firmware - RMP protection bypass: An access-control failure in SEV firmware lets a malicious hypervisor bypassCVE-2025-29948 · AMD SEV firmware - RMP protection bypassMedium
- AMD SEV firmware - improper initialization corrupting RMP-covered memory: An initialization defect in SEV firmware letsCVE-2025-29952 · AMD SEV firmware - improper initialization corrupting RMP-covered memoryMedium
- GRUB2 TPM auto-unlock: forced rescue mode leaves the LUKS volume decrypted with the key still in memoryCVE-2025-4382 · GRUB2 with TPM-based LUKS auto-decryption (rescue mode key retention)Medium
- AMD Secure Processor firmware - MMIO routing lock (Zen 5): A missing lock check in ASP firmware on some Zen 5 partsCVE-2025-54510 · AMD Secure Processor firmware - MMIO routing lock (Zen 5)Medium
- Arista DANZ Monitoring Fabric: crafted file in an upgrade ISO bypasses image signature validationCVE-2025-54549 · Arista DANZ Monitoring Fabric (upgrade image validation)Medium
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.